CLAIMS 

What is claimed as new and desired to be protected by 
Letters Patent of the United States is: 

1 . A method of associating session tickets, the method 
comprising the steps of: 

receiving, by a ticketing authority server, a ticket generation 
request and information about a client node; 
identifying, by a ticketing authority server, a master session 
ticket associated in a storage element with the client node; 
generating, by a ticketing authority server, a derivative 
session ticket for the client node; 

associating, by a ticketing authority server, the derivative 
session ticket with the master session ticket; and 
storing, by a ticketing authority server, information about 
the client node and the derivative session ticket in the 
storage element. 

2. The method of claim 1 wherein step (b) further comprises 
identifying a master session ticket for the client node by 
using the received information to query the storage 
element. 



3. The method of claim 1 wherein step (c) comprises 
generating a master session ticket for the client node. 

4. The method of claim 1 wherein step (c) further comprises 
assigning a session profile type to the derivative session 
ticket. 

5. The method of claim 1 wherein step (d) further comprises 
associating, by the ticketing authority server, the derivative 
session ticket and the master session ticket by storing a 
reference to the derivative session ticket in the storage 
element entry for the master session ticket. 

6. A system for associating session tickets comprising: 
a master session ticket; 

a derivative session ticket; and 

a ticketing authority server receiving a ticket generation 
request and information about a client node, identifying the 
master session ticket associated with the client node, 
generating the derivative session ticket for the client node, 
associating the derivative session ticket with the master 
session ticket, and storing information about the client 
node and the derivative session ticket in a storage element. 



7. The system of claim 6 wherein the master session ticket 
further comprises a client identifier. 

8. The system of claim 7 wherein the client identifier 
comprises a user name. 

9. The system of claim 7 wherein the client identifier 
comprises a domain name. 

1 0. The system of claim 6 wherein the master session ticket 
further comprises a session profile type. 

1 1 . The system of claim 6 wherein the derivative session ticket 
further comprises a session profile type. 

1 2. The system of claim 6 wherein the derivative session ticket 
further comprises a reference to the master session ticket. 

1 3. A method of renewing associated session tickets, the 
method comprising the steps of: 
receiving, by a ticket authority server, a session ticket 
renewal request and a session ticket; 
retrieving, by a ticket authority server, the session 
associated with the received session ticket; 



renewing, by a ticket authority server, session expiration 
date; 

retrieving, by a ticket authority server, the master session 
ticket associated with the received session ticket; 
renewing, by a ticket authority server, the session 
expiration date of the master session ticket; 
retrieving, by a ticket authority server, any derivative ticket 
associated with the master session ticket; and 
renewing, by a ticket authority server, the session 
expiration date of the derivative session ticket associated 
with the master session ticket. 

The method of claim 1 3 wherein step (b) further comprises 
querying a storage element to retrieve the session 
information associated with the session ticket. 



